UBUNTU-CVE-2022-1729
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-1729
UBUNTU-CVE-2022-1729
Summary:
Details: A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain root privileges. The bug allows to build several exploit primitives such as kernel address information leak, arbitrary execution, etc.
References: https://ubuntu.com/security/CVE-2022-1729, https://www.openwall.com/lists/oss-security/2022/05/20/2, https://lore.kernel.org/all/[email protected]/T/#u, https://github.com/torvalds/linux/commit/3ac6487e584a1eb54071dbe1212e05b884136704, https://ubuntu.com/security/notices/USN-5560-1, https://ubuntu.com/security/notices/USN-5560-2, https://ubuntu.com/security/notices/USN-5594-1, https://ubuntu.com/security/notices/USN-5599-1, https://ubuntu.com/security/notices/USN-5602-1, https://ubuntu.com/security/notices/USN-5616-1, https://ubuntu.com/security/notices/USN-5622-1, https://ubuntu.com/security/notices/USN-5623-1, https://ubuntu.com/security/notices/USN-5630-1, https://ubuntu.com/security/notices/USN-5639-1, https://ubuntu.com/security/notices/USN-5647-1, https://ubuntu.com/security/notices/USN-5650-1, https://ubuntu.com/security/notices/USN-5654-1, https://ubuntu.com/security/notices/USN-5660-1, https://www.cve.org/CVERecord?id=CVE-2022-1729
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
